securityonline.info 6/4/2026, 3:51:36 AM · external

NI SystemLink flaw lets attackers bypass authentication, CVSS 9.1

NI SystemLink flaw lets attackers bypass authentication, CVSS 9.1
CyberSIXT Evidence Panel Source marked as original reporting
CISA KEV Not in KEV
Patch Patch Status Unknown

A critical vulnerability, tracked as CVE-2026-9051, has been identified in National Instruments' SystemLink application, allowing unauthenticated attackers to exploit authentication bypass to access restricted systems. This flaw poses a high CVSS score of 9.1, prompting immediate patch deployment by administrators. The vulnerability specifically affects older versions of NI SystemLink Enterprise, with the recommendation to upgrade to version 2026-05 to mitigate risks.

The issue is present within the core web interface, enabling potential privilege escalation and information disclosure. This situation underscores the necessity of timely software updates to protect against remote exploitation.

View full article

Article by CyberSIXT